sec-retro

Facilitate security-focused retrospective meetings to analyze incidents and vulnerabilities.

Updated Feb 21, 2026
One-click install
npx skills add https://github.com/hilaryosborne/skills --skill sec-retro
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: sec-retro
Source: https://github.com/hilaryosborne/skills/tree/main/security/sec-retro
Command: npx skills add https://github.com/hilaryosborne/skills --skill sec-retro

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill helps in conducting security-focused retrospectives to identify and address security vulnerabilities and improve security posture.

Core Features & Use Cases

  • Security Incident Review: Analyze past security incidents to understand root causes and impact.
  • Vulnerability Assessment: Discuss and prioritize identified vulnerabilities.
  • Security Process Improvement: Identify gaps in current security practices and propose enhancements.
  • Use Case: After a recent data breach, use this skill to guide a retrospective discussion to understand how the breach occurred and what measures can be put in place to prevent future incidents.

Quick Start

Initiate a security retrospective for the recent 'customer data exposure' incident.

Frequently Asked Questions about sec-retro

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I conduct a security incident retrospective after a data breach?

A security incident retrospective analyzes data breaches by reviewing structured incident details. This process identifies root causes and impact to propose preventive measures, ultimately improving your organization's security posture.

What is a security retrospective and when do I need one?

A security retrospective is a post-incident review process needed after security incidents or during vulnerability assessments. It analyzes identified risks to understand root causes, evaluate impact, and propose security process enhancements.

How do I prioritize vulnerabilities during a post-mortem review?

To prioritize vulnerabilities during a post-mortem, input structured details about identified risks and incidents. The retrospective analysis guides the discussion to evaluate root causes and systematically rank security gaps.

Can I use a security retrospective for threat modeling discussions?

Yes, security retrospectives apply to threat modeling discussions. By providing structured input on incident details and identified risks, the analysis guides threat evaluation and proposes targeted security process improvements.

What input is required to facilitate a security post-mortem?

Facilitating a security post-mortem requires structured input on incident details and identified risks. Providing this specific vulnerability and incident context is necessary to guide the analysis and generate actionable improvement suggestions.